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1 . A method by which more than one client program connected to a network stores 
the same data item on a storage device of a data repository connected to the networjfcthe 
method comprising: 

encrypting the data item using a key derived from the content of the dafe item;^ 
determining a digital fingerprint of the data item; and / f 

storing the data item on the storage device at a location or locati^s associated with 
the digital fingerprint. 

2. The method of claim 1 further comprising testing for *vhether a data item is 
already stored in the repository by comparing a digital fingerprint of the data item to digital 
fingerprints of data items already in storage in the repository/. 

3. The method of claim 2 wherein the same digital fingerprint is used for storing the 
data item on the storage device and for testing whether a data item is already stored in the 
repository. 

4. The method of claim 1 wherein th/ encrypting of the data item is performed by the 
client prior to transmitting the data item to/me storage device. 

5. The method of claim 4 further comprising encrypting the key and storing the 
encrypted key on the storage device px on another storage device connected to the network. 

6. The method of claim /wherein a client or user specific key is used to encrypt the 
key derived from the content of the data item. 

7. The method of claim 1 wherein the key derived from the content of the data item 
is the same for all instances of the data item stored in the repository. 

8. The method of claim 1 wherein users of the method are grouped into families, and 
the key derived from the content of the data item is the same for all instances of the data item 
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stored in the repository by users in the same family, but may be different for users/in 
different families. / 

9. The method of claim 2 wherein one or more additional copies or other forms of 
redundant information about the data items is stored on the storage device or on other storage 
devices connected to the network for data integrity, availability, or ajzcessibility purposes and 
not to provide separate storage of the data item for different clienyprograms. 

10. The method of claim 1 further comprising associating the data item with each of 
a plurality of access-authorization credentials, each of which is uniquely associated with a 
particular user or client program. / 

1 1 . The method of claim 2 further comprising associating the data item with each of 
a plurality of access-authorization credentials, each of which is uniquely associated with a 
particular user or client program. / 

12. The method of claim 10 wherein the associating of the data item with each of a 
plurality of access-authorization credentials comprises storing a plurality of named objects, 
each named object comprising information representative of the data item paired with 
information representative of one ofthe access-authorization credentials. 

13. The method of claim 12 wherein the information representative of the data item 
is a digital fingerprint. / 

14. The method of claim 12 wherein the information representative of the access- 
authorization credential/is a cryptographic hash of all or part of the access-authorization 
credential. / 

15. The method of claim 14 wherein the cryptographic hash is an access identifier 
that uniquely identifies the data item for a particular user or client program. 
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1 6. The method of claim 12 wherein the named object is a data structure created )sy 
the client program. 

1 7. The method of claim 12 wherein the named object is a data structur^created by a 
5 server program acting on behalf of the repository. 

18. The method of claim 12 further comprising a client replacing an existing version 
of a named object with a new version of that named object, by replacing the existing 
association with a data item stored on the storage device with a new association. 



19. The method of claim 12 further comprising a client retrieving a data item by 
accessing a named object using an access-authorization credential to select the named object, 
and using the contents of the named object to determiije the location of the data item on the 
storage device. 

20. The method of claim 12 wherein the named objects further comprise version 
information associating different data items With different versions of the named object. 



p 21 . The method of claim 20 wherein a backup of data items stored on the storage 

sjjd: device is accomplished by preserving/copies of the current versions of named objects in 
CH existence at the time of the backup 

22. The method of claim 1 wherein records are kept of the association between data 
items and names in order ty define named objects, and wherein data items recorded as being 
25 associated with named oWects are not deleted from the repository, and wherein named 
objects are backed up ^y preserving copies of the named object records in existence at the 
time of the backup. 



23. The method of claim 21 or 22 wherein a plurality of backups are made at spaced 
30 time intervals/ 
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24. The method of claim 21 or 22 wherein the backup is accomplished by declaring 
that after a prescribed moment in time a new version of each named object will be abated the 
first time that a new data item is associated with it. / 

25. The method of claim 24 wherein the prescribed moment in thacfe is determined 
" separately for each named obj ect . / 

26. The method of claim 22 wherein named objects ^preserved by creating a new 
version of each named object each time that a new data item is associated with it. 

27. The method of claim 26, wherein versions of named objects that are deemed 
unnecessary are deleted. / 

28. The method of claim 27, wherein the determination of which versions of a 
named object to delete is based in whole or in part on the times at which the versions were 
created, and the intervals between th^se times. 

29. The method of claim 20 further comprising preparing a digital time stamp of a 
plurality of named objects Xp allow a property of these named objects to be proven at a later 
date. / 

30. The method of claim 29 wherein a random or other difficult to guess element is 
incorporated inter the time stamp hash for each named object, to prevent the property from 
being proven if this element is deleted. 

3 1 ./The method of claim 12 further comprising determining that a data item stored on 
the storage device is not referenced by any named object, and reusing the storage space used 
to storoohe unreferenced data item. 
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32. The method of claim 12 further comprising altering one or more properties^ 
parameters associated with an access-authorization credential to change the access^fghts of a 
client or user to the data item referenced by that credential. 

5 33. The method of claim 2 further comprising a challenge step tp^ascertain that the 

client has the full data item. 

34. The method of claim 33 wherein the challenge step comprises requiring that the 
client attempting to store a data item provide correct answers to inquiries as to the content of 
10 portions of the data item, or inquiries that require knowledge of this content. 



35. The method of claim 34 wherein the /lata item content on which the challenge is 
based is selected with a degree of randomness/ 

36. The method of claim 2 wherein depositors use the client to store data items in the 



repository, and at least some depositors are required to provide identification, 



37. The method of claiiji 36 wherein rules for when a depositor must provide 
identification are selected indrder to discourage unlawful distribution of access to the data 



2d: item. 
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38. The method of claim 37 wherein there is a greater degree of user identification or 
a higher likelihood4hat user identification will be required when the data item being stored 
by the depositor lias been indicated to be shareable with other users. 

39. Tyne method of claim 37 wherein for a class of data items the items may only be 
shared if th£ depositor has provided adequate identification. 



fo. The method of claim 38 or 39 wherein identity information about the depositor is 
30 made^available to anyone able to access the data item, to discourage unlawful sharing. 
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41 . The method of claim 40 wherein the identity information is stored mi 
encrypted form that the depositor and users subsequently accessing the shared/oata item can 
both read. 

42. The method of claim 41 wherein the repository is not abje to decrypt the identity 
information about the depositor. 

43. The method of claim 37 wherein the identity of^ome users has not been well 
verified, but restrictions are placed on. sharing of data it^ms deposited by such poorly verified 
users. 

44. The method of claim 43 further cojrfprising limiting access to data items 
deposited by a poorly verified user. 



45. The method of claim 44 wherein the limited access is provided by limiting the 
aggregate bandwidth provided for such accesses. 



46. The method of claim 44 wherein the limited access is provided by limiting the 
number of simultaneous accesses to the data items. 



47. The methop of claim 2 wherein the client has a directory structure for the data 
items, the data item^are stored in the repository, and the directory structure is not evident to 
the repository maintainers. 

48. The method of claim 2 wherein the client program using the repository is a 
mirroring program which determines which data items to deposit in the repository, and 
wherein that^etermination is based at least in part on the result of a comparison of digital 
fingerprints establishing that certain data items are not in the repository. 

19. The method of claim 48 wherein mirroring software is downloaded to the client 
usingya bootstrap process, wherein a small bootstrap program is downloaded and executed, 
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and the bootstrap program manages download and installation of the remainder of $ffc 
mirroring software. 

50. The method of claim 48 wherein the default for deciding what^ta items to 
5 mirror is to mirror all or substantially all data items. 

5 1 . The method of claim 48 wherein the mirroring comprises making a determination 
of which data items need to be transmitted to the repository, and wherein that determination 
is based primarily on a comparison of digital fingerprints fo^data items at the client and data 

10 items in the repository. 

52. The method of claim 10 wherein the access-authorization credential is 
determined in part by computing a hash involving4lements of the pathname for a file on the 

^ client computer. 

ill 53. The method of claim 52 wherein the path name hash is made unique to a client 

f:|- by introducing a reproducible but randomly chosen element into it. 

p 54. The method of claim 12! wherein a data item is represented as a composite of 

2Cff data-items, and the component data-items are separately deposited in the repository. 

rK / 

ri / 

Zl 55. The method of daim 54 wherein lists of fingerprints for data-items making up a 

composite data-item are deposited as an index data item, which can be given an object-name 
and used for obtaining Recess to any of the component data-items. 

25 

56. The method of claim 55 wherein a proof-of-deposit is returned for each 
component deposit, and some or all of the proofs are presented when the index data item is 
given an object-riame. 

30 57. The method of claim 56 wherein, when transmitting a composite data-item, the 

client use^iingerprints to avoid retransmitting components following loss of communication. 
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58. The method of claim 57 wherein the index data-item is encrypted with a kpy that 
is only made available to the repository at the moment of access. / 

59. The method of claim 55 wherein an email message is broken uponto component 
items in such a manner that the individual attachments are separate comfxment data-items. 

60. The method of claim 1 5 wherein the physical location it which information about 
named-objects is stored is based on access identifiers, to introduce reproducible 
pseudorandomness into the physical locations of the namejKobject data. 

61 . The method of claim 1 wherein the fingerprints are determined from the data 
items, and this process produces randomly distributed numbers which can be used to 
introduce reproducible pseudorandomness into^ne physical locations of the data items. 

62. The method of claim 2 wherein an access identifier is formed to provide proof of 
ownership of the data item stored in therepository, the access identifier is formed by 
producing a one-way hash including item-identifying information chosen by the client 
program to identify the data item,^nd the one-way hash cannot be reversed to permit the 
repository to discover the identity of the client program or user. 

63. The method o&claim 62 wherein the item-identifying information is associated 
with the data item on thexlient. 

64. The method of claim 63 wherein the item-identifying information is derived at 
least in part from the path name of the data item on the client. 

65. The/method of claim 62 wherein user-identifying information is provided to the 
repository as part of the access-authorization credential. 
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66. The method of claim 65 wherein at least some access-authorization credenti^fs 
-can be transferred between users without the use of the repository. 

67. The method of claim 65 wherein at least one class of users is not pejmitted to 
5 transfer access using access-authorization credentials. 

68. A method by which more than one client program connected to a network stores 
the same data item on a storage device of a data repository connecte^to the network, the 
method comprising: 

10 determining a digital fingerprint of the data item; 

testing for whether the data item is already stored in tKe repository by comparing the 

digital fingerprint of the data item to the digital fingerprints of data items already in storage 

in the repository; and / 
j3 challenging a client that is attempting to deport a data item already stored in the 

VSi repository, to ascertain that the client has the full data item. 



69. The method of claim 68 wherein the repository gives the client a deposit receipt 
which allows the user to prove that the deposit occurred. 



2jg: 70. The method of claim 68 wherein the challenging comprises requiring that the 

EM client provide correct answers to inquiries as to the content of portions of the data item, or 
£= inquiries that require knowledge/W this content. 

71 . The method of claim 70 wherein the data item content on which the challenge is 
25 based is not easily predicted by the user or client program. 

72. The method of claim 70 wherein the data item content on which the challenge is 
. based can be determined by the client program without the aid of the repository. 
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73. The method of claim 68 wherein future access to the data item deposited^ 
provided by creating an access-authorization credential which can be presented at^4ater time 
to prove that the challenge has been met for that data item. 

5 74. The method of claim 73 wherein each access authorization cr^ential is uniquely 

associated with a access owner. 

75. The method of claim 73 wherein each access authorisation credential includes 
information sufficient to identify the access owner. 

10 

76. The method of claim 73 wherein the access qrfthorization credential includes a 
fingerprint. 

sjh 77. The method of claim 73 wherein the Access authorization credential is associated 

l£j with a fingerprint in the repository. 

jj j 78. The method of claim 76 or 77>wherein the fingerprint is different from the 

y 1 fingerprint used for testing whether the^data item is already stored in the repository. 

2§> 1 79. The method of claim 73 wherein the access authorization credential is associated 

2; directly with the data-item or \yith a record in the repository that is associated with the data- 
Li -item. 

80. The method If claim 79 wherein the record in the repository with which the 
25 access authorization credential is associated is an access identifier that is associated with the 

credential by computation of a one way hash function. 

81. The method of claim 80 wherein the access identifier is stored in the repository 
and is compared'with a later hash of an access authorization credential to verify access 

30 permission to/a named object. 
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82. The method of claim 73 wherein the access authorization credential may inclijcfe 
information sufficient to respond to a challenge. 



83. The method of claim 73 wherein the access authorization credential includes data 
5 proof information created during a challenge process that is sufficient to proyeto the 

repository that the challenge was passed. 

84. The method of claim 83 wherein the data proof information comprises the actual 
challenge response, so that it can be directly verified against the^ta-item. 

10 

85. The method of claim 73 wherein at least some/access-authorization credentials 
can be transferred between users without the aid of the/epository. 

86. The method of claim 85 wherein the Usage of some access authorization 

1 &? credential is restricted for at least one class of access owners. 

Bl / 

Li! - / 

rj; 87. The method of claim 86 wherein the access authorization credential is only 

yi usable by the access owner. 
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88. The method of clainy86 wherein the aggregate bandwidth available to all users of 



yl the access authorization credential is limited. 
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89. The method eff claim 68 wherein at the time of deposit at least some data items 
are associated with a imnimum expiration time. 

90. The method of claim 89 wherein at least some data items that expire are removed 
and their storage f>pace reused. 



91 . Tne method of claim 90 wherein the repository keeps track of which access 
30 owners have deposited a given data item. 
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92. The method of claim 91 wherein upon an access owner informing the repositc 
that a data item is no longer needed, the data item is deleted or the expiration of the da^a item 
is accelerated. 

5 93. The method of claim 92 wherein the repository truncates the list cff depositors 

associated with a data-item, and never accelerates the expiration of this data item. 

94. The method of claim 68 further comprising encrypting^ne data item using a key 
derived from the content of the data item. 

10 ... 

95. The method of claim 94 wherein the enciyptirafof the data item is performed by 
the client prior to transmitting the data item to the storage device. 

43 96. The method of claim 94 further comprising encrypting the key and storing the 

encrypted key on the storage device or on another storage device connected to the network. 

I / 

yj 97. The method of claim 96 wherein a client or user specific key is used to encrypt 

y 1 the key derived from the content of the .data item. 

s 7 

2g; 98. A method by which more than one client program connected to a network stores 

S 1 the same data item on a storage/device of a data repository connected to the network, the 
method comprising: 

determining a digit&l fingerprint of the data item; 

storing the data jtem on the storage device at a location or locations associated with 
25 the digital fingerprint; 

associating the data item with each of a plurality of access-authorization credentials, 
each of which is uniquely associated with an access owner; and 

preparing/^ digital time stamp of a plurality of records associating data-items and 
credentials, to allow a property of these records to be proven at a later date. 

30 
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99. The method of claim 98 wherein preparing the digital time stamp compiles 
forming a time stamp hash, and wherein a difficult to guess or random element is 
incorporated into the time stamp hash, to prevent the property from being proven if this 
.element is deleted. 

5 

1 00. The method of claim 98 wherein all data items in the rejx>sitory are time 
stamped if they remain in the depository for a sufficiently long tinie period. 

101 . A method for quantifying the degree of uniqueness of an indicated data item in 
10 a repository of data items stored on a storage device at Rations associated with their digital 

fingerprints, the method comprising: 

creating access-authorization credentials wjdch permit users or clients to access data- 
items that they have deposited; and 

4% determining (or approximating) the number of users with access authorization 

1E credentials for the indicated data item. 



u ] . 1 02. The method of claim 1 0 /wherein the data item is a portion of the body of an e- 

^ 1 mail message, and the method is used to determine the relative uniqueness of the portion of 

1 / 

Ej the e-mail message in a large population of e-mail messages to determine the likelihood that 

261 the e-mail is spam. 



103. The methocr of claim 101 wherein a decision as to whether a data item is a virus 
is made by comparin^he relative uniqueness of both the data item and other data items 
associated with the same application. 
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104. Theymethod of claim 101 further comprising collecting and providing usage 
statistics based/on the degree of uniqueness of data items in the repository. 



105/ The method of claim 104 wherein the usage statistics are configured to provide 
30 ..marketing penetration information on the data item. 
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1 06. A method by which more than one client connected to a network stores me 
same data item on a storage device of a data repository connected to the network, ^ne method 
comprising: 

determining a digital fingerprint of the data item; 

testing for whether a data item is already stored in the repository^ comparing the 
digital fingerprint of the data item to the digital fingerprints of data i^ms already in storage 
in the repository; and 

associating with a data item an informational tag whiclj'may be read by at least some 
client programs. 

1 07. The method of claim 1 06 wherein the informational tag indicates at least one of 
the following: whether the data item contains spa^i, whether the data item contains or is a 
virus, whether the data item is copyrighted, by y whom the data item is copyrighted, what 
royalty payment is due for the copyright. 

108. The method of claim 107yfurther comprising the process of collecting royalties 
or other payments for use of a copyp^ht on a data item based on the indication of whether a 
data item is copyrighted. 



2#» 



109. The method o^claim 108 wherein the process enables voluntary payment of 
such royalties or paymer 
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110. The method of claim 106 further comprising encrypting the data item using a 
key derived fromihe content of the data item. 

111. Trie method of claim 110 wherein at least some of the tags are encrypted using 
the same key as for each data item, so that users with the data item can read the informational 
contents of the tag. 



30 



1 12. A method by which more than one client connected to a network may store the 
data item on a storage device of a data repository connected to the network, and 
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wherein there is a public data repository and a private data repository, the methj 
comprising: 

determining a digital fingerprint of the data item; 
testing for whether a data item is already stored in the public repository by comparing 
5 .the digital fingerprint of the data item to the digital fingerprints of dajfca items already in 
storage in the public repository; and 

if the data item is present in the public repository, creating an access authorization 
credential for the public repository associating the client with4he data item and relying on 
storage of the data item in the public repository; and if the/data item is not present in the 
10 public repository, creating an access authorization credential for the private repository and 
relying on storage of the data item in the private repository. 



M 
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113. The method of claim 112 whereinydie client creates an access authorization 
credential for the data item exclusively either/in the public or the private repository. 



Hi 114. The method of claim 2 wherein the data items are widely circulated non- 

T s j electronic media such as books or music, and the method further comprises converting the 

Ul widely circulated non-electronic media to a standardized electronic version; 
p storing the standardized electronic version as a data item in the repository; 

2Q: promoting the availability of the standardized electronic version to users with the 

Em right to have access, whereby the likelihood of the data repository storing multiple, slightly- 

?IL different electronic versions of the non-electronic media is reduced. 



115. A methou by which a client connected to a network over a lower speed 
25 connection may provide higher speed access to a data item for application processing than is 
possible over the relatively low speed connection to the network, the method comprising: 
determining a digital fingerprint of the data item; 

testingf for whether the data item is already stored in a repository by comparing the 
digital fingerprint of the data item to digital fingerprints of data items already in the 
30 reposito/ 
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only if the data item is not already in the repository, transferring the data item o^er 
the lower speed connection from the client to the repository, the repository being cpmiected 
to the network over a higher speed connection than the client; / 

making a higher speed connection between an application server and/the data 
repository; / 

executing an application on the application server to process the data item stored on 
the data repository; / 

returning at least some of the processed data to the client/across the lower speed 
connection. / 

1 16. The method of claim 115 wherein one or boui of the data transfers to and from 
the client are conducted in the background while othei/applications are running on the client. 

1 1 7. A method by which multiple clients / orowse content on a network such as the 
Internet, the method comprising: / 

each of the multiple clients accessing content on the network via one or more proxy 
servers; / 

determining the digital fingerOTtat of an item of content passing through the proxy 
server; / 

storing the item of content in a content repository connected to the proxy server at a 
location associated with the digital fingerprint; 

testing for whether^ content data item is already stored in the repository by 
comparing the digital fingerprint of the content data item to the digital fingerprints of content 
data items already in storage in the repository; 

associating a content data item already stored in the repository with an access 
authorization credential uniquely associated with an access owner. 

118. The method of claim 1 1 7 wherein the data repository saves substantially all 
content browse<M>y the clients, thereby preserving the content after it has been altered or 
removed from/the network. 
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119. The method of claim 1 1 8 further comprising granting search engines acces^o 
the stored content data items or to information about the number of times that data it^ms have 
been accessed or how recently the data items have been accessed 

5 120. A method by which a plurality of clients connected to a network store the same 

broadcast data on a storage device of a data repository connected to the^network, wherein the 
broadcast data comprises a sequence of frames or other fragments, tjafe method comprising: 
determining a digital fingerprint of each fragment; 

testing for whether the fragment is already stored in th^ repository by comparing a 
10 digital fingerprint of the fragment to digital fingerprints of^ragments and other data items 
already in storage in the repository; 

having only the client or clients that determinythat a fragment is not stored in the 
repository transmit the fragment to the repository; 
2? whereby because all but one or a small number of clients will not have to transmit the 

iff fragment to effect storage of the fragment in the repository, most of the clients are able to 
IR store the broadcast data in the repository wimout actually transmitting a significant fraction 
^ j of the data to the repository. 

m 121. The method of claim l/O wherein the broadcast data is video and the fragments 

26^. are frames of video. 




£^ 122. A method of encrypting a bit-string using cellular automata, comprising 

dividing the bit-string into segments in which at least some bits in each segment are 
considered to be homologous; 
25 transforming disjoint groups of homologous bits by applying a state-permutation 

operation separately to each group; and 

changing which bits are considered to be homologous and repeating the process. 



123. The4nethod of claim 122 wherein the arrangement of bits into segments can be 
30 expressed as having a spatial interpretation, and the spatial origin of each segment is shifted 
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in a manner determined by an encryption key, with bits in different segments that have^tfe 
same spatial coordinates considered to be homologous. 

124. The method of claim 123 wherein an encryption key is used to determine what 
5 state-permutation operation is applied to each group of homologous bits in/each step. 

125. The method of claim 48 wherein the aforesaid steps oftne method provide a 
mirroring capability for a personal computer, and mirroring software with instructions for 
carrying out the aforesaid steps is preconfigured on the personal computer upon purchase. 

10 

126. The method of claim 48 wherein the aforesafd steps of the method provide a 
mirroring capability for a personal computer, and mirroring software for carrying out the 
method is initially configured to mirror essentially all data on the user's computer. 

.ass - / 

/ 

\§\ 127. The method of claim 48 wherein/the aforesaid steps of the method provide a 

01 mirroring capability for a wireless network/device. 



- - 1 



Ul 128. A method for selling a backup service for backing up or mirroring data on a 

gi client computer, the method comprising: 
2(! y accepting an unlimited amount of backup or mirroring data from a plurality of client 

m computers, and storing the dafa in one or more repositories to which the client computers are 
?f connected via a network, for free or at a charge substantially less than sufficient to cover the 
cost of operating the backup service; 

charging a substantial fee, greater than the fee charged for accepting the data, for 
25 recovery of the datagram the repositories. 

129. The method of claim 128 wherein the fee charged for recovery is greater when 
the recovered nata is provided quickly, either by express delivery of media containing the 
data or by d/livery over a high-speed data connection. 

30 
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1 30. The method of claim 128 wherein recovery of data over a slow-speed dp 
connection is provided at no fee or at a charge substantially less than sufficient takeover the 
cost of operating the backup service. 

5 131. The method of claim 1 28, 1 29, or 1 3 0 wherein data coalescence using digital 

fingerprints is used to reduce the amount of data transmitted and storep during backup or 
mirroring. 

132. The method of claim 128 wherein a charge is mafie to third parties for high- 
10 speed network access to the client data resident on the repositories. 

133. The method of claim 68 wherein records ire kept of the association between 
data items and names in order to define named objee&s, and wherein data items recorded as 

% being associated with named objects are not deleted from the repository, and wherein named 
iN objects are backed up by preserving copies of tfie named object records in existence at the 
pjl time of the backup. 

Ul 1 34. The method of claim 68 wherein a backup of data items stored on the storage 

device is accomplished by preserving copies of the current versions of named objects in 
2<T U existence at the time of the backup 

^: 135. The method of y daim 133 or 134 wherein a plurality of backups are made at 

spaced time intervals. 

25 136. The method of claim 133 or 134 wherein the backup is accomplished by 

declaring that after a prescribed moment in time a new version of each named object will be 
created the first time that a new data item is associated with it. 

137. The method of claim 136 wherein the prescribed moment in time is determined 
30 separately fo^each named object. 
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138. The method of claim 133 wherein named objects are preserved by creating a 
new version of each named object each time that a new data item is associated withnt. 

139. The method of claim 138 wherein versions of named objects tlj#t are deemed 
5 unnecessary are deleted. 

140. The method of claim 139 wherein the determination of which versions of a 
named object to delete is based in whole or in part on the times which the versions were 
created, and the intervals between these times. 



141 . The method of claim 68 wherein depositors use the client to store data items in 
the repository, and at least some depositors are required to provide identification. 

142. The method of claim 141 wherein/rules for when a depositor must provide 
identification are selected in order to discourage unlawful distribution of access to the data 
item. 



U1 143. The method of claim 14z wherein there is a greater degree of user identification 

r j or a higher likelihood that user identification will be required when the data item being stored 
20 s ' by the depositor has been indicated to be shareable with other users. 

IT!"! / 

144. The method pf claim 142 wherein for a class of data items the items may only 
be shared if the depositor has provided adequate identification. 

25 145. The method of claim 143 or 144 wherein identity information about the 

depositor is madeyavailable to anyone able to access the data item, to discourage unlawful 
sharing. 



146/ The method of claim 145 wherein the identity information is stored in an 
30 encryptecr form that the depositor and users subsequently accessing the shared data item can 
both road. 

67 



• 



PATENT 

RNEY DOCKET NO.: U656-002001 



147. The method of claim 146 wherein the repository is not able to decryptuie 
identity information about the depositor. 

148. The method of claim 143 wherein the identity of some^sers has not been well 
verified, but restrictions are placed on sharing of data items deposited by such poorly verified 
users. 

149. The method of claim 148 further composing limiting access to data items 
deposited by a poorly verified user. 

150. The method of claim 149 Wnerein the limited access is provided by limiting the 
aggregate bandwidth provided for such accesses. 

151. The method of claim 149 wherein the limited access is provided by limiting the 
number of simultaneous accesses to the data items. 

152. The method of claim 73 wherein the access-authorization credential is 
determined in pan by computing a hash involving elements of the pathname for a file on the 
client computer. 

53. The method of claim 152 wherein the path name hash is made unique to a client 
by introducing a reproducible but randomly chosen element into it. 
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